Microsoft Purview compliance portal: Data Loss Prevention - Just in time protection (JIT) on SharePoint

🚨 The Signal: Microsoft Purview DLP now offers 'just-in-time' protection for SharePoint files. This extends data loss prevention policies to unclassified files, applying restrictions automatically when data attempts to leave SharePoint.

The Impact

Security teams and data owners are affected by enhanced data exfiltration protection, reducing the risk of sensitive information leaving SharePoint.

  • Security teams: Reduced risk of data exfiltration from SharePoint.
  • Data owners: Improved control over sensitive unclassified information.
  • Compliance officers: Stronger attestation for data protection policies.
  • End-users: Potential restrictions on sharing unclassified SharePoint files.

The Action

  1. Review existing Purview DLP policies for SharePoint to identify where JIT protection can be applied.
  2. Create new DLP policies or modify existing ones in Microsoft Purview compliance portal (compliance.microsoft.com) to enable 'just-in-time protection' for SharePoint.
  3. Test JIT protection with a pilot group to ensure expected behaviour and minimal user disruption.
  4. Communicate changes to users regarding new restrictions on unclassified SharePoint content.

Domain: Purview · Impact: high · Workload: Microsoft Purview